Information Security Consultant

Jobtailor

Lübeck

Vor Ort

EUR 60.000 - 80.000

Vollzeit

Vor 7 Tagen
Sei unter den ersten Bewerbenden

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Jobtailor is seeking an experienced ISMS/GRC professional in Lübeck to maintain ISMS policies, integrate regulatory requirements, and lead audits. You will advise departments on compliant process design and independently plan audits, producing detailed reports and management-ready findings.

The role requires strong German and English skills, experience with risk assessments, and hands-on use of GRC systems and security awareness platforms.

Qualifikationen

  • Completed degree in IT security, CS, or business informatics
  • Alternatively, equivalent qualification with several years of professional experience
  • Experience developing and maintaining an ISMS per ISO/IEC 27001
  • Experience planning and conducting audits independently
  • Experience with risk assessments
  • Experience with GRC systems and security awareness platforms
  • Strong German and English skills

Aufgaben

  • Maintain and update ISMS policies
  • Integrate new regulatory requirements
  • Advise departments on compliant process design
  • Independently plan and conduct audits
  • Prepare audit reports
  • Prepare findings for annual management review
  • Define and monitor corrective actions
  • Optimize the GRC system
  • Develop the Internal Control System (ICS)
  • Plan training for security awareness
  • Provide admin support for the security awareness platform
  • Analyze KPIs statistically
  • Map department processes in the GRC system
  • Support Risk Owners in risk analyses
  • Collaborate with CISO to strengthen information security

Kenntnisse

ISMS maintenance
ISO 27001
Audit planning
Risk assessment
GRC systems
Security awareness
German-English

Ausbildung

IT security degree
Business informatics degree
Equivalent qualification

Tools

GRC platforms
Security awareness platforms

Jobbeschreibung


  • Maintain and continuously update all ISMS policies

  • Integrate new regulatory requirements

  • Advise business departments on process design in compliance with applicable standards

  • Independently plan and conduct audits

  • Prepare detailed audit reports

  • Prepare audit findings for the annual management review

  • Define and monitor corrective actions

  • Continuously optimize the GRC system

  • Contribute to the development of the Internal Control System (ICS)

  • Plan training activities strategically

  • Provide administrative and content-related support for the security awareness platform

  • Analyze key performance indicators statistically

  • Capture and map department-specific processes in the GRC system

  • Support Risk Owners in conducting systematic risk analyses

  • Collaborate with business departments and the CISO to strengthen information security and further develop the security culture


Requirements


  • Completed university degree, for example in IT security, computer science, or business informatics

  • Alternatively, an equivalent qualification combined with several years of professional experience

  • Experience developing and maintaining an ISMS in accordance with ISO/IEC 27001

  • Relevant certifications are a plus

  • Experience independently planning and conducting audits

  • Experience with risk assessments

  • Experience tracking corrective actions

  • Practical experience with GRC systems

  • Practical experience with security awareness platforms

  • Very good German and English skills

  • Team-oriented, pragmatic, structured, communicative, and self-motivated approach to work


Core Competencies

Demonstrates expertise in maintaining ISMS policies and integrating regulatory requirements, with a strong focus on conducting audits and optimizing GRC systems. Proficient in risk assessment and security awareness training, complemented by excellent communication skills in both German and English.


Highest-signal resume keywords


  • ISMS Development and Maintenance

  • ISO/IEC 27001 Compliance

  • Audit Planning and Execution

  • GRC System Optimization

  • Risk Assessment Experience


Hard Skills


  • ISMS Policies

  • Audit Reporting

  • Corrective Action Tracking

  • Risk Analysis

  • Process Design Compliance


Soft Skills


  • Team-Oriented

  • Pragmatic

  • Structured

  • Communicative

  • Self-Motivated


Certifications & Qualifications


  • Relevant Certifications


Industry Keywords


  • Internal Control System

  • Key Performance Indicators

  • Regulatory Requirements

  • Information Security

  • Security Culture


Tools & Technologies


  • GRC Systems

  • Security Awareness Platforms

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

IT Administrator with Security Focus
IT Administrator with Security Focus

metamorphosis GmbH • Paderborn

Vor Ort
EUR 60.000 - 90.000
Manager CISO Office (f/m/d)
Manager CISO Office (f/m/d)

GEA Germany GmbH • Düsseldorf

Vor Ort
EUR 120.000 - 180.000
Information Security Officer (m/f/d)
Information Security Officer (m/f/d)

IDEALworks GmbH • München

Hybrid
EUR 70.000 - 90.000
30 vacation days
Bonus scheme
Company pension scheme
+1
Manager CISO Office (f/m/d)
Manager CISO Office (f/m/d)

gea • Düsseldorf

Vor Ort
EUR 120.000 - 180.000
IT Risk & Compliance Manager / Informationssicherheitsbeauftragter (m/w/d)
IT Risk & Compliance Manager / Informationssicherheitsbeauftragter (m/w/d)

TieTalent • Berlin

Hybrid
EUR 70.000 - 90.000
Betriebliche Altersvorsorge mit Arbeitgeberzuschuss
Mobiles Arbeiten
Individuelle Weiterbildungsangebote
+1
Informationssicherheitsbeauftragter (m/w/d) in der Direktvermittlung
Informationssicherheitsbeauftragter (m/w/d) in der Direktvermittlung

DIS Deutscher Industrie Service AG • Dassow

Hybrid
EUR 70.000 - 110.000
Unbefristete Festanstellung
Attraktive Vergütung
30 Tage Urlaub
+3
Global Information Security Manager (m/w/d)
Global Information Security Manager (m/w/d)

Verbio Group • Leipzig

Hybrid
EUR 60.000 - 80.000
Unbefristete Anstellung
30 Urlaubstage jährlich
Betriebliche Altersvorsorge
Senior Consultant Information Security (m/w/d)
Senior Consultant Information Security (m/w/d)

EZcon Network GmbH • Aalen

Vor Ort
EUR 90.000 - 130.000
Senior IT Security Consultant (m/f/d) new
Senior IT Security Consultant (m/f/d) new

beON consult GmbH • Kiel

Vor Ort
EUR 60.000 - 90.000
Attractive financial compensation
Comprehensive development opportunities
Healthy work-life balance
+2
Information Security (Senior) Manager (m/w/d)
Information Security (Senior) Manager (m/w/d)

NVISO Security • Frankfurt

Vor Ort
EUR 90.000 - 115.000
Training budget of 10,000 EUR
30 days of vacation
Flexible working hours
+2